D-Link DFL-870 – NetDefend UTM Firewall with 6 Configurable Gigabit Ports, 4Gbps Firewall Throughput, VPN, IPS, Antivirus, Web Filtering, Application Control & HA Support
Overview:
• The D-Link DFL-870 is a NetDefend Unified Threat Management Firewall designed to protect business networks from viruses, intrusions, harmful traffic, web threats, and unauthorized access.
• It provides an integrated security platform including firewall, VPN, Intrusion Detection & Prevention System IDPS, antivirus, web content filtering, application control, email security, bandwidth management, and high availability.
• The firewall includes 6 configurable 10/100/1000BASE-T ports, 2 reserved USB 2.0 ports, and 1 Mini-USB console port for flexible deployment.
• It delivers firewall throughput up to 4Gbps, VPN throughput up to 1Gbps, IPS throughput up to 450Mbps, antivirus throughput up to 600Mbps, and application control throughput up to 700Mbps.
• It supports up to 500,000 concurrent sessions, 45,000 new sessions per second, and 2,000 security policies.
• The DFL-870 is suitable for SMB and enterprise networks that require advanced UTM protection, VPN connectivity, traffic control, WAN failover, server load balancing, and ZoneDefense endpoint security.
Key Features:
• NetDefend UTM Firewall.
• 6 configurable Gigabit Ethernet ports.
• Firewall throughput up to 4Gbps.
• VPN throughput up to 1Gbps.
• IPS throughput up to 450Mbps.
• Antivirus throughput up to 600Mbps.
• Application Control throughput up to 700Mbps.
• Supports up to 500,000 concurrent sessions.
• Supports up to 45,000 new sessions per second.
• Supports up to 2,000 policies.
• Intrusion Detection & Prevention System IDPS.
• Anti-virus protection.
• Web Content Filtering for HTTP / HTTPS.
• Application control.
• Email security and anti-spam.
• Captive Portal and User Identity Awareness.
• IPSec, PPTP, L2TP, SSL, and GRE VPN support.
• Redundant IPSec VPN gateway.
• Hub-and-spoke VPN support.
• WAN failover and outbound load balancing.
• Server load balancing.
• Link aggregation on LAN ports.
• IEEE 802.1Q VLAN support.
• IPv6 support.
• Policy-based routing.
• Granular bandwidth management.
• Active / Passive High Availability.
• ZoneDefense proactive endpoint security.
• Internal AC power supply.
Technical Specifications:
• Product Type: UTM Firewall
• Brand: D-Link
• Model: DFL-870
• Series: NetDefend UTM Firewall
• Ports: 6 × Configurable 10/100/1000BASE-T Ports
• USB Ports: 2 × USB 2.0 Reserved for Future Use
• Console Port: 1 × Mini-USB Console Port
• Firewall Throughput: 4Gbps
• VPN Throughput: 1Gbps
• IPS Throughput: 450Mbps
• Antivirus Throughput: 600Mbps
• Application Control Throughput: 700Mbps
• Concurrent Sessions: 500,000
• New Sessions: 45,000 Per Second
• Policies: 2,000
• Firewall Features: NAT / PAT, Transparent Mode, Application Layer Gateway, H.323 NAT Traversal, Time-Scheduled Policies, ZoneDefense
• User Authentication: Local User Database, RADIUS, Microsoft AD, LDAP
• Networking: DHCP Server / Client, DHCP Relay, IGMPv3, IPv6, Policy-Based Routing, IEEE 802.1Q VLAN, Link Aggregation
• Traffic Load Balancing: Outbound Load Balancing, Failover Traffic Redirection, Server Load Balancing
• Bandwidth Management: Guaranteed Bandwidth, Priority Bandwidth, Maximum Bandwidth, Dynamic Bandwidth Balancing, Policy-Based Traffic Shaping, VPN Tunnel Bandwidth Management, IDP Traffic Shaping
• High Availability: WAN Failover, Device Failure Detection, Link Failure Detection, FW / VPN Session Synchronization, Active / Passive Mode
• VPN Tunnels: 200 Tunnels
• VPN Protocols: IPSec, PPTP, L2TP, SSL VPN, GRE
• VPN Encryption: DES, 3DES, AES, Blowfish, Twofish, CAST-128
• VPN Features: IKE / IKEv2, Redundant IPSec VPN Gateway, Hub-and-Spoke, IPSec NAT Traversal, Dead Peer Detection
• IDPS Services: 12 / 24 / 36 Months Subscription Options, Automatic Pattern Update, DoS / DDoS Protection, Email-Based Intrusion Notification, IP Blacklisting
• Content Filtering: HTTP / HTTPS URL Blacklist / Whitelist, Custom Forbidden Web Page, Maximum File Size Protection, SafeSearch Enforcement
• Script Filtering: Java Applets, JavaScript, VBScript, Cookies, ActiveX
• Antivirus: Real-Time Scanning, Stream-Based Scanning, Antivirus over VPN, ZIP / GZIP Compressed File Scanning up to 10 Levels, Kaspersky Signature Licensing
• Application Control: 1,000+ Recognized Applications, Schedule and Rule-Based Control, Application Bandwidth Management, Policy Control, Prioritization
• Email Security: SMTP, POP3, IMAP, File Type Whitelist / Blacklist, Email Address Filtering, Sender / Receiver Blacklist, Anti-Spam
• Management: Install Wizard, CLI, SNMP v1/v2c, Email Notifications, HTTP / HTTPS Web UI, SSH, Syslog, Real-Time Performance Monitoring
• Power Supply: Internal AC Power Supply, 100–240VAC
• Maximum Power Consumption: 20W
• Dimensions: 278 × 183 × 44 mm
• Weight: 1.7kg
• Operating Temperature: 0°C to 40°C
• Storage Temperature: -20°C to 70°C
• Operating Humidity: 5% to 95%, Non-Condensing
• EMI: FCC Class A, VCCI, CE Class A
• Safety: LVD EN60950-1
• MTBF: 374,681 Hours
Applications:
• SMB and enterprise network perimeter security.
• Branch office firewall deployment.
• Secure VPN connectivity between head office and branches.
• Remote user VPN access.
• Intrusion prevention and antivirus gateway protection.
• Web content filtering and employee internet control.
• Application control and bandwidth prioritization.
• Email security and anti-spam filtering.
• WAN failover and server load balancing.
• VLAN-based network segmentation.
• High availability firewall deployment.
• ZoneDefense endpoint protection.
• Business networks requiring advanced UTM protection in one appliance.
Connect Gates Recommendation:
• Recommended for SMB and enterprise environments that need advanced UTM firewall protection with high throughput and flexible Gigabit port configuration.
• Suitable for offices, branches, factories, server rooms, and corporate networks requiring firewall, VPN, IDPS, antivirus, web filtering, application control, email security, and high availability.
• Best used when the client needs 4Gbps firewall throughput, 1Gbps VPN throughput, 6 configurable Gigabit ports, 500,000 concurrent sessions, WAN failover, server load balancing, and ZoneDefense support.
• Connect Gates recommends confirming active subscription availability, firmware status, support lifecycle, required throughput, and required security services before offering it for new projects.
Documents